Trend Micro Vision One Workbench
Trend Micro Vision One is an extended detection and response (XDR) platform that enhances threat detection, investigation, and response across multiple security layers.
Bitdefender GravityZone
Bitdefender GravityZone is an enterprise-level cybersecurity solution offering advanced threat prevention, detection, and response for endpoints, networks, and cloud environments.
OCSF
The OCSF (Open Cybersecurity Schema Framework) is an initiative to create a common, open-source set of data standards and schemas for cybersecurity threat information.
Palo Alto Cortex XSOAR (XDR integration)
This integration serves as an extension that leverages the Sekoia.io Defend (XDR) API, enabling requests from the Cortex XSOAR interface.
1Password Enterprise Password Manager
1Password's Enterprise Password Manager offers robust security features for businesses, enabling secure sharing and management of passwords and sensitive data across teams.
Cognyte Nexyte
Cognyte Nexyte is a Decision Intelligence Platform used primarily by governments, law enforcement, and national security agencies to speed up complex investigations.
Clavister NGFW
Clavister Next-Gen Firewall offers advanced network protection with integrated features like intrusion prevention, application control, and content filtering.
Pradeo Mobile Threat Defense
Pradeo Mobile Threat Defense (MTD) is a comprehensive security solution designed to protect mobile devices from various threats such as malware, phishing, and network attacks.
Google Cloud Load Balancing
Google Cloud Load Balancing is a fully distributed, software-defined managed service that distributes traffic across multiple backend instances in multiple regions.
Microsoft Entra ID - Event Hubs
Microsoft Entra ID (Azure AD) is a cloud-based Identity and Rights management service.
Zscaler ZIA playbooks
Zscaler is a cloud security company providing secure internet access and zero trust network access to protect enterprise data and applications.
WithSecure Elements playbooks
WithSecure, formerly known as F-Secure Business, provides cybersecurity solutions focusing on threat detection, incident response, and endpoint protection.
SentinelOne EDR playbooks
SentinelOne is a cybersecurity company that provides autonomous endpoint protection through AI-powered threat detection and response.
HarfangLab EDR playbooks
HarfangLab is an Endpoint detection and response (EDR) solution certified by ANSSI since 2020.
Fortinet FortiGate playbooks
Fortigate is a firewall appliance from Fortinet with anti-spam and anti-virus features.
Crowdstrike Falcon playbooks
CrowdStrike Falcon is a cloud-native cybersecurity platform known for its advanced threat detection, endpoint protection, and real-time response capabilities.
WatchGuard Endpoint Security / Panda Security Aether playbooks
PandaSecurity, a WatchGuard company, is a cybsersecurity vendor, delivering products designed to protect endpoints against outside threats.
M&NTIS
M&NTIS is an Adversary Emulation and Cyber Range platform primarily used to test and validate a company's cybersecurity defenses.
Thinkst Canary
Thinkst Canary is a deceptive honeypot device that mimics various systems to lure and detect cyber threats, providing early and accurate breach alerts.
Palo Alto Prisma Access
Palo Alto Prisma Access is a cloud-delivered security platform that provides secure access to applications and data.
Azure Application Gateway
Azure Application Gateway is a web traffic load balancer that manages traffic to your web applications with advanced routing, SSL termination, and Web Application Firewall (WAF) features.
Trellix ePO
Trellix ePO (ePolicy Orchestrator) is a centralized security management console that acts as the main dashboard for an organization's entire security network.
Juniper Switches
Juniper Networks' JunOS is an advanced operating system powering Juniper's networking devices, renowned for its reliability, performance, and comprehensive feature set.
EfficientIP SOLIDserver DDI
EfficientIP SOLIDserver suite of appliances is designed to deliver highly scalable, secure and robust virtual and hardware appliances for critical IPAM-DNS-DHCP-NTP-TFTP services.
Bitsight SPM
Bitsight Security Performance Management enables organizations to continuously monitor, measure, and improve their cybersecurity performance.
Swimlane Turbine (XDR integration)
Swimlane + XDR is a unified kill-switch that takes an alert and instantly blocks the threat across your entire network.
Swimlane Turbine (CTI integration)
Swimlane + CTI is a threat lookup tool that automatically checks if links or files are bad by querying global databases for you.
Jizo AI
Jizo AI / Sesame it NDR is a network observability platform that enables decision-makers to anticipate, identify and block cyber-attacks.
Raw events
The Raw Event Format is a generic format that accepts any format of event.
Postfix
Postfix is a free and open-source mail transfer agent that routes and delivers electronic mail.